Integer Overflow in Cloud-Brd Binary Leads to Heap-Based Buffer Overflow and Code Execution
CVE-2024-25139

Currently unrated

Key Information:

Vendor

TP-Link

Vendor
CVE Published:
14 March 2024

What is CVE-2024-25139?

The TP-Link Omada ER605 is susceptible to a significant vulnerability that arises from an integer overflow within the cloud-brd binary, affecting versions up to 2.2.3. This flaw can lead to a heap-based buffer overflow, enabling an attacker to compromise the system by executing code with root-level privileges. The vulnerability has been addressed in the latest version, ER605(UN)_v2_2.2.4 Build 020240119, which mitigates the associated risks. Users are strongly advised to update to the latest firmware to ensure their devices remain secure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.